A severe command injection vulnerability (CVE-2024-56334) has been identified in the widely used Node.js system information package,...
News
CrushFTP, a popular file transfer server known for its robust features and user-friendly interface, has issued an...
Adobe has released urgent security updates to address a critical vulnerability in ColdFusion versions 2023 and 2021....
Radware’s latest report unveils the emergence of the Holy League—a hacktivist formed in July 2024. This group...
TRAC Labs recently unveiled a new phishing kit, named WikiKit, which is targeting industries across automotive, manufacturing,...
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has raised the alarm on a critical security flaw...
The Rspack ecosystem, known for its high-performance JavaScript bundler written in Rust, has become the latest victim...
Cybercriminals are increasingly weaponizing cracked versions of legitimate vulnerability scanning tools, like the Araneida Scanner, for malicious...
Google finds itself in hot water with regulators yet again, this time in Japan. The nation’s Fair...
Streaming giant Netflix has been hit with a hefty fine by the Dutch Data Protection Authority (Dutch...
The Apache Software Foundation recently released a critical security update to address a remote code execution (RCE)...
Security researchers at Assetnote have disclosed a critical vulnerability (CVE-2024-56145) in Craft CMS, a widely-used PHP-based content...
Akamai Security Intelligence Research Team (SIRT) has uncovered a vulnerability in DigiEver DS-2105 Pro DVRs is being...
The NodeStealer malware, first identified as a JavaScript-based threat, has undergone a transformation into a Python-based infostealer,...
A California court has ruled that Israeli firm NSO Group is liable for hacking into WhatsApp and...
Despite its popularity, the phishing-as-a-service platform Rockstar2FA suffered a partial collapse in November 2024 due to technical...
In a recent analysis by Kaspersky Labs, the infamous Lazarus Group continues to refine its strategies, blending...
A recent report by Cyble Research and Intelligence Labs (CRIL) unveils a troubling trend: threat actors are...
The npm ecosystem has been infiltrated once more by the persistent Skuld infostealer, a notorious malware strain...
Cybercriminals are targeting corporate executives with highly advanced mobile spear phishing attacks, leveraging sophisticated evasion techniques and...
Pranita Pradeep Kulkarni, Senior Engineer in Threat Research at Qualys, has detailed a new ransomware strain dubbed...
Kaspersky has uncovered a fresh variant of the BellaCiao malware family—BellaCPP—marking a shift from .NET to C++...